CNNVD-202512-2347 Information

CNNVD ID

CNNVD-202512-2347

CVE-2025-54981

  • CNNVD Published: 2025-12-12

Description (Chinese)

Apache StreamPark是美国阿帕奇(Apache)基金会的一个流媒体应用程序开发框架。 Apache StreamPark 2.1.7之前版本存在安全漏洞,该漏洞源于使用弱加密算法,可能导致敏感认证数据暴露。

Description (English)

Apache StreamPark is a drift-media application development framework for the Apache Foundation in the United States. There was a security loophole in the previous version of Apache StreamPark 2.1.7 that originated from the use of weak encryption algorithms and could lead to the exposure of sensitive authentication data.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

阿帕奇

Published

2025-12-12

Last Modified

2026-02-24

References

https://lists.apache.org/thread/9rbvdvwg5fdhzjdgyrholgso53r26998 http://www.openwall.com/lists/oss-security/2025/12/12/4

Patch

https://streampark.apache.org/

Share on: